CVE-2013-4690 is a memory initialization vulnerability affecting Juniper Junos on SRX1400, SRX3400, and SRX3600 devices, specifically versions 10.4 before 10.4S13, 11.4 before 11.4R7-S1, 12.1 before 12.1R5-S3, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10. This flaw allows remote attackers to obtain sensitive information by reading uninitialized memory locations used for Ethernet packet padding. With a CVSS score of 5.0 (medium), it presents a low complexity attack vector with no authentication required, leading to a potential compromise of confidentiality. There is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and minimal community discussion or media coverage, indicating a low current threat landscape.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:10.4:*:*:*:*:*:*:* | ||
11.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:11.4:*:*:*:*:*:*:* | ||
12.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1:*:*:*:*:*:*:* | ||
12.1x44CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x44:*:*:*:*:*:*:* | ||
12.1x45CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x45:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.